An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in the management interface of FortiWAN 4.0.0 up to and including 4.5.9 may allow an authenticated malicious user to execute unauthorized commands via specifically crafted arguments to existing commands.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
fortinet fortiwan 4.4.1 |
||
fortinet fortiwan 4.4.0 |
||
fortinet fortiwan 4.3.1 |
||
fortinet fortiwan 4.3.0 |
||
fortinet fortiwan 4.2.7 |
||
fortinet fortiwan 4.2.6 |
||
fortinet fortiwan 4.2.5 |
||
fortinet fortiwan 4.2.2 |
||
fortinet fortiwan 4.2.1 |
||
fortinet fortiwan 4.1.3 |
||
fortinet fortiwan 4.1.2 |
||
fortinet fortiwan 4.1.1 |
||
fortinet fortiwan |